Re: Patching a SSH 'Weakness'

2008-09-12 Thread ge7r85o02
To all who opposed the suggestion to send one block of data when the key is pressed: my suggestion strictly referred to the login procedure, not to the later data communication. I did not mention this because I thought it was clear from the context of the original poster who has expressively menti

Patching a SSH 'Weakness'

2008-09-11 Thread ge7r85o02
Just off the top of my head (I have to check the SSH protocol yet): Why not encipher all accumulated keystrokes up to the key as a block send them instead of sending each keystroke as it is typed? This shrouds the typist's characteristics. In addition, if the cipher is a block cipher, padding i

IPsec configuration router <==> WLAN peers

2008-09-05 Thread ge7r85o02
I have two questions, one trivial *blush*: How can I search the archives for one or a combination of keywords? Second, I have some questions how to set up IPsec on a router which is connected to the Internet, an internal network, and a WLAN. The router (currently on OpenBSD 4.0) has the followi